4 ms·
> If you consider all possible 12-character passwords, there are something around 2^72 possibilities. [...] But the people who crack human-created passwords don
by ghostwriter 4y ago
> If you consider all possible 12-character passwords, there are something around 2^72 possibilities. [...] But the people who crack human-created passwords don’t do it that way. [...] What matters is whether yours is going to be among the few billion that attackers try first.
In other words, human-generated vs non-human generated becomes irrelevant with the growth of an average password length, the longer the length of a human-picked password the lower the chances it would match with someone else's leaked longer password. In the end it would take slightly more than a dataset with "a few billion" pre-defined values. The attacker has to decide whether the password is even longer than usual, or non-human generated at all, and whether it's still worth pursuing for the further few billion iterations.
- guiambros 4y agoIf you are an attacker and targeting a specific user, then yes - you wouldn't know the password length. However, if you were able to breach LastPass and got a database containing hundreds of thousands or millions of users, you could safely assume that many would have average-length passwords, with lower entropy than machine-generated passwords. This means that using a combination of rules and dictionary-based attacks could indeed significantly reduce the search space. I think the article also does a good job explaining why the claim that "you're safe because of 100,100 iterations of PBKDF2" is pure marketing BS, and LastPass is either being dishonest or intentionally misleading users. It also made me appreciate even more 1Password's architecture, and a deeper understanding of the (mildly annoying) secret keys. The last paragraph is also great: the point of longer passwords is not as much to protect from a breach on their side, but to protect in case your own machine is breached*. Those are very different threat models, and always worth assessing them separately. Disclaimer: I've been a long time user of 1Password, but the recent breaches indeed got me a bit worried about what would happen if AgileBits were ever in the same situation.